Security Analysis of OpenDaylight, ONOS, Rosemary and Ryu SDN Controllers

被引:0
作者
Arbettu, Ramachandra Kamath [1 ]
Khondoker, Rahamatullah [2 ]
Bayarou, Kpatcha [2 ]
Weber, Frank [2 ]
机构
[1] Tech Univ Darmstadt, Dept Comp Sci, Darmstadt, Germany
[2] Fraunhofer Inst Secure Informat Technol SIT, Darmstadt, Germany
来源
2016 17TH INTERNATIONAL TELECOMMUNICATIONS NETWORK STRATEGY AND PLANNING SYMPOSIUM (NETWORKS) | 2016年
关键词
Software Defined Networking (SDN); Controller Security; STRIDE; Network Security; Security Analysis;
D O I
暂无
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
There is an immense expectation on Software-Defined Networking (SDN) in industry as a novel approach towards potentially replacing conventional network management and control. However, SDN is not immune to security vulner-abilities which currently exist in the legacy systems or which may newly arise due to change in the network design. Since the beginning of SDN development, primary focus of research was on separation of control plane from data plane by keeping performance and operational flexibility unchanged. In the due course of achieving this, security aspects of an SDN have taken a back seat. Even though separation of control plane from a data plane is a great step towards simplification of network management, it subjects the network into a potential two way target for intruders to gain control. Due to the centralized design of SDN, compromising security of a controller will be as good as compromising the security of a whole network. Enterprises which are moving towards adapting SDN are concerned about security issues and the resulting problems. In this paper, we analyze the security issues of few of the widely used controllers. We found that the OpenDaylight controller is the most secure one compared to the other controllers. In addition, this paper also provides a snapshot of current development in security aspect of SDN controllers such that it may help SDN controller developers to identify the issues and rectify the same in future releases.
引用
收藏
页码:37 / 44
页数:8
相关论文
共 39 条
  • [1] [Anonymous], P 2015 ANN NETW DIST
  • [2] [Anonymous], 2014, P 3 WORKSH HOT TOP S, DOI DOI 10.1145/2620728.2620744
  • [3] [Anonymous], 2013, P CENTR E EUR SOFTW
  • [4] Barrett D.J., 2001, SSH, the Secure Shell: The Definitive Guide
  • [5] Brandt M., 2014, IEEE ICCE 2014 SPEC
  • [6] Case J.D., 1990, RFC1157: Simple Network Management Protocol (SNMP)
  • [7] Dauer P., 2015, 10 INT C FUT INT TEC
  • [8] Eggert T., 2016, ICEEICT 2016
  • [9] Gilliam D. P., 2002, Proceedings Eleventh IEEE International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises. WET ICE 2002, P153, DOI 10.1109/ENABL.2002.1030002
  • [10] Jorm D., LINUX SMALL SECURITY